Package Health

luisasofie/unicorn

This is a licensed, non-deprecated, stable package with a matching and transparent source repository, a small but coherent dependency profile, no install-time lifecycle scripts, and recent release and repository-push activity. However, it is young at 142 days with only three releases, has no recorded commits or active maintainers in the last three months, lacks packaged or repository tests, has no security scanning or security policy, and shows limited adoption. The package appears usable, but its maintenance capacity and engineering assurance are not yet strong enough to rate it as fully healthy; consider it a reasonable dependency with normal safeguards and review its future activity.

Latest 1.0.2PackagistPackagist

68%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

50

Dependencies
Dependencies
Evaluates the health and security of package dependencies

100

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

78

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

90

Health Score Breakdown

Package scaffoldingcaution

A substantial README is present, but both the artifact and repository report no tests and no changelog. The repository file tree does contain Documentation/Changelog/Index.rst, which partly compensates for the changelog gap, but the absence of tests remains a maintenance-assurance gap for a backend extension.

Project backingcaution

The repository is owned by an individual user rather than an organization, so the project appears to rely on a single personal owner. This is not inherently unhealthy, but it offers less visible institutional backing.

Release historycaution

The package is young at 142 days and has only three releases, with a median interval of about 71 days. Releases have continued through the assessment date, but the limited history provides only modest evidence of long-term maintenance.

Repo commit activitycaution

The repository records zero commits and zero active maintainers during the last three months. Although the recent push and release provide some compensating evidence, the observed commit history still leaves meaningful uncertainty about ongoing maintenance capacity.

Repo issue activitycaution

There is one open issue and one open pull request, but no new or closed issues or merged pull requests in the last month. This indicates little observed community or maintenance throughput.

Vulnerabilities

We didn't find any vulnerabilities for this package.

Package versions

Maintainers

Luisa Sofie Faßbender

Direct Dependencies

DependencyLast ReleaseScore
typo3/cms-core
Version ^14.0
—
—
typo3/cms-backend
Version ^14.0
—
—

Weekly Downloads

Info

Last Published
25 days ago
Created
5 months ago

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform